Korean
<< Back
VID 22416
Severity 40
Port 80, ...
Protocol TCP
Class WWW
Detailed Description The WinGate Proxy server, according to its banner, has a buffer overflow flaw which exist in versions prior to 6.1.3. Qbik WinGate is a proxy server for Microsoft Windows platforms that provides advanced user management and an integrated email server. WinGate versions prior to 6.1.3 are vulnerable to a stack-based buffer overflow vulnerability in the HTTP proxy. By sending a specially-crafted HTTP request to the affected server, a remote attacker could exploit this vulnerability to execute arbitrary code on the affected host or to cause the affected daemon to crash.

* Note: This check solely relied on the banner of the remote HTTP server to assess this vulnerability, so this might be a false positive.

* References:
http://forums.qbik.com/viewtopic.php?t=4215
http://lists.grok.org.uk/pipermail/full-disclosure/2006-June/046646.html
http://secunia.com/advisories/20483
http://securitytracker.com/id?1016239
http://www.frsirt.com/english/advisories/2006/2182

* Platforms Affected:
Qbik, WinGate versions prior to 6.1.3
Microsoft Windows Any version
Recommendation Upgrade to the latest version of WinGate (6.1.3 or later), available from the WinGate Download Web site at http://www.wingate.com/download.php
Related URL CVE-2006-2926 (CVE)
Related URL 18312 (SecurityFocus)
Related URL 26970 (ISS)